Vulnerability CVE-2021-41559


Published: 2022-06-28   Modified: 2022-06-29

Description:
Silverstripe silverstripe/framework 4.8.1 has a quadratic blowup in Convert::xml2array() that enables a remote attack via a crafted XML document.

 References:
https://www.silverstripe.org/download/security-releases/
https://github.com/silverstripe/silverstripe-framework/releases
https://www.silverstripe.org/download/security-releases/cve-2021-41559

Copyright 2024, cxsecurity.com

 

Back to Top